What Is Call Bombing?
Call bombing explained: what it is, how a bombing service places hundreds of calls an hour, why the caller ID is hidden, and what the law says about it in India.
The short definition
Call bombing is the practice of placing a large volume of outgoing phone calls to a single target number in a short window of time. The victim's phone rings continuously, the caller ID is usually hidden or spoofed, and the purpose is to overwhelm or intimidate rather than to have a conversation.
If your phone has been ringing repeatedly from unknown numbers today, that pattern is the signature of a call bombing attack. It is worth knowing what you are looking at before you decide what to do about it.
How a bombing service actually works
Nobody sets up a call bombing service by buying phones. The infrastructure is rented. An operator takes a block of outbound call capacity, known as a SIP trunk, from a telecom provider, and points it at a target number with a script that tells the trunk to call continuously.
Because the trunk has far more capacity than a single phone line, the result is hundreds of calls per hour rather than a handful. The calls often connect to silent audio, an automated recording, or a recording that plays a few seconds of something designed to make you answer the next one.
Why the caller ID is almost always hidden
Most attack calls display a number that does not belong to the person attacking you. This is deliberate. The attacker rents numbers that allow them to present an arbitrary caller ID, and rotates through them so the victim cannot simply block one number and be done.
The flip side is that it makes attribution very hard. When a police complaint arrives, the number in the call log is a rented virtual number that may have been used for a hundred other calls that day. This is why formal escalation is slow, and why prevention is a better strategy than response.
Why services look free and still are not
Sites offering free call bombing typically run one of three models. In the first, the tool simply does nothing and the page exists only to collect ad revenue from the traffic. In the second, the number you enter is stored and resold as a marketing lead, which is how the number ends up on call lists you never signed up for. In the third, a small real component runs alongside a large fake one, and the volume you get is a fraction of what was promised.
None of these are good outcomes. The first wastes your time, the second exposes your number to further harassment, and the third still makes you the party who initiated thousands of unwanted calls.
What the law says in India
Section 66D of the Information Technology Act, 2000 covers repeatedly sending unsolicited messages, calls or voice calls to another person, with imprisonment of up to three years and a fine. It is the provision most directly aimed at bombing, and it is rarely enforced against individuals, but it is unambiguous.
Separately, TRAI's commercial communications rules prohibit unsolicited promotional communication on any registered network, and every major carrier operates a complaint-driven termination process. A number that generates sustained complaint volume loses its ability to send promotional traffic at the network level, regardless of any individual complaint.
What to do if it is happening to you
Do not answer repeatedly. Answering is what the attacker wants, because a conversation gives them confirmation the number is live and being read.
Register on the National Customer Preference Register, which is free and takes about two minutes, and then add carrier-level filtering and Android's built-in call screening. If the pattern continues for more than a few days, file a report at cybercrime.gov.in with your call log screenshots. Our protection checklist has the full eight-step sequence in the order that works.
- Register on the National Customer Preference Register at telecomp.in
- Enable your carrier's spam caller filtering app
- Turn on Android's built-in Call screening under Caller ID and spam
- Block individual numbers as they appear, and screenshot the call log
- Report the pattern at cybercrime.gov.in if it continues beyond a few days
Try the simulator instead
If you came here looking for a way to understand the experience, our call bomber simulator reproduces what the attack looks like on the receiving end without placing a single call. It runs entirely in your browser and the number you type never leaves the tab.